CVE-2023-27419: WordPress Viable blog Theme <= 1.1.4 is vulnerable to Cross Site Scripting (XSS)
Published May 10, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest themes Viable Blog theme <= 1.1.4 versions.
Affected Software
1 affected component
Everestthemes Viable Blog<=1.1.4
Event History
May 10, 2023
CVE Published
via MITRE·08:29 AM
Data Sourced
via MITRE·08:29 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-27419.
2
What is the severity level of CVE-2023-27419?
The severity level of CVE-2023-27419 is high (6.1).
3
What is the affected software for CVE-2023-27419?
The affected software for CVE-2023-27419 is Everestthemes Viable Blog theme version up to and including 1.1.4.
4
What is the Common Weakness Enumeration (CWE) for CVE-2023-27419?
The Common Weakness Enumeration (CWE) for CVE-2023-27419 is CWE-79 (Cross-Site Scripting).
5
How can I fix the Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest themes Viable Blog theme?
To fix the Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest themes Viable Blog theme, update to the latest version of the theme (1.1.5 or higher) and apply any available patches or security updates.